Security
Survey is built on the same infrastructure trusted by thousands of teams. Here's how we keep your surveys and respondent data safe.
Encryption
- All traffic uses TLS 1.2+ in transit.
- Data at rest is encrypted with AES-256 in our managed Postgres database.
- Secrets and API keys are stored in an isolated, audited vault.
Access control
- Row-level security on every table โ workspaces are isolated at the database layer, not just in the app.
- Role-based access within workspaces (owner, admin, editor, viewer).
- SSO with Google. SAML SSO available on the Business plan.
Infrastructure
Hosted on Cloudflare and Supabase, with global edge delivery and primary data residency in the EU and US regions. Daily encrypted backups with 30-day point-in-time recovery.
Compliance
- GDPR and UK-GDPR compliant โ Data Processing Agreement available on request.
- CCPA compliant.
- SOC 2 Type II audit in progress (target Q4 2026).
Responsible disclosure
Found a vulnerability? Email security@prompt2survey.app with details. We acknowledge reports within 48 hours and credit researchers who follow responsible disclosure.